Now SAML takes it all: Federation of non Web-based Services in the State of Baden-Württemberg

  • TYPE: Combined Session DATE: Wednesday, May 15, 2013 TIME: 17:00-18:00 LOCATION: AMMERSEE 2

Today, the Security Assertion Markup Language (SAML) is widely used to implement identity and service providers (for instance, Shibboleth and OpenSAMLphp), which provide organizational and cross-organizational service access, as well as, single sign-on. From the perspective of a service provider, the main reasons for the extensive use of SAML-based authentication and attribute delivery are probably the simple integration of web-based services and the increased quality of identity information that is provided by the identity provider of an organization. However, a convenient integration of non web-based services (e.g., services that can be accessed via SSH) into a federated service infrastructure has not been possible so far. In the current talk, I present FACIUS, a SAML-based architecture that enables cross-organizational access to high performance, grid, and cloud computing resources, as well as, to large scale data facilities. In particular, FACIUS serves as an integration concept that can be used for non web-based services in any existing SAML-based federation with only minimal changes. Furthermore, I report on the application of FACIUS in the cross-institutional project bwIDM that is borne by identity management experts of the nine universities of the state of Baden-Württemberg, Germany. Currently, non web-based services of academic institutions of Baden-Württemberg are provided in an un-federated and locally administered manner, where everyone uses service-specific credentials to get access (like in most other institutions or companies). bwIDM aims to provide federated single sign-on to those non web-based services and to relieve the services from the burden of user management. In the context of the bwIDM project, proof-of-concepts based on FACIUS were implemented and already deployed to productive services.

Log in to download presentations:  


Sebastian Labitzke Researcher, Karlsruhe Institute of Technology (KIT) Sebastian Labitzke studied computer science at the University of Karlsruhe. He is member of the department Services, Development, and Integration at the Steinbuch Centre for Computing and part of Prof. Dr. H. Hartenstein's...


Session Links


European Identity & Cloud Conference 2013

Registration fee:
€1980.00 $2475.00 S$3168.00 21780.00 kr
Mastercard Visa American Express PayPal INVOICE
Contact person:

Mr. Levent Kara
+49 211 23707710
  • May 14 - 17, 2013 Munich/Germany